AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2005-1698

MEDIUM · CVSS 5 EPSS 1.13%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-05-24 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2005-1698
Severity
MEDIUM
CVSS
5
EPSS
1.13%

Original NVD Description

PostNuke 0.750 and 0.760RC3 allows remote attackers to obtain sensitive information via a direct request to (1) theme.php or (2) Xanthia.php in the Xanthia module, (3) user.php, (4) thelang.php, (5) text.php, (6) html.php, (7) menu.php, (8) finclude.php, or (9) button.php in the pnblocks directory in the Blocks module, (10) config.php in the NS-Multisites (aka Multisites) module, or (11) xmlrpc.php, which reveals the path in an error message.